cve/2019/CVE-2019-14467.md
2024-06-18 02:51:15 +02:00

831 B

CVE-2019-14467

Description

The Social Photo Gallery plugin 1.0 for WordPress allows Remote Code Execution by creating an album and attaching a malicious PHP file in the cover photo album, because the file extension is not checked.

POC

Reference

Github